cbcvebase.
CVE-2012-0015
published 2012-02-14

CVE-2012-0015: Microsoft .NET Framework 2.0 SP2 and 3.5.1 does not properly calculate the length of an unspecified buffer, which allows remote attackers to execute arbitrary…

critical9.3CVSS 3.1
AVNACMAuNCCICAC
Microsoft .NET Framework 2.0 SP2 and 3.5.1 does not properly calculate the length of an unspecified buffer, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, or (3) a crafted .NET Framework application, aka ".NET Framework Heap Corruption Vulnerability."

Affected

2 ranges
VendorProductVersion rangeFixed in
microsoftnet_framework
microsoftnet_framework